As part of the ITASEC 2026 event, a strategic tutorial focusing on the new UNI/PdR 174:2025 Reference Guide will be held on 9 February (from 10.00 am to 12.30 pm) in Cagliari.

The meeting focuses on aligning the requirements of the UNI CEI EN ISO/IEC 27001:2024 standard with the objectives set out in the NIST Cybersecurity Framework (CSF) 2.1. This is a practical response to the growing complexity of the regulatory landscape, which requires organisations to comply with several different regulatory frameworks simultaneously.

The Tutorial: UNI/PdR 174:2025 and the operational use case with the “Serics PDR App”

The tutorial will be led by industry experts, including Riccardo Bianconi (Accredia), Fabio Guasconi (UNI expert), Davide Nardacci (ACN), Marco Angelini (Sapienza University of Rome), Giovanni Paolo Caruso (CNR) and Ermete Meda (CINI), who will explain the fundamental principles of the practice and the technical rationale behind harmonisation.

The highlight of the session will be the presentation of the “Serics PDR App”, a web application developed to provide practical support to organisations adopting the practice. This tool allows to carry out the assessment using three analysis methods:

  • Analysis for NIST CSF sub-categories.
  • Analysis for UNI CEI EN ISO/IEC 27001 controls and requirements.
  • Identifying compliance gaps and planning corrective actions.

Advantages and stakeholders involved

The UNI/PdR 174:2025 guideline was developed by Accredia, the Italian Accreditation Body, in collaboration with the CINI Cybersecurity National Lab, UNI and other institutional stakeholders. This model offers immediate competitive advantages:

  • Operational efficiency: reducing fragmentation and optimising resources to address the most critical vulnerabilities.
  • Reliability: greater transparency for stakeholders and support in the process of achieving accredited certification.
  • NIS2 Focus: the workshop will take a practical approach specifically tailored to those required to comply with NIS2.

Who is it aimed at:

This tutorial is aimed at CISOs, CIOs, compliance officers, auditors and business decision-makers interested in simplifying cybersecurity governance through the harmonisation of frameworks.

To take part in the tutorial, you can register for the ITASEC-SERICS event HERE


Programme 

10:00 – 10:15 am Opening of the session and keynote address – Riccardo Bianconi (Accredia)

10:15 – 10:30 am Standardisation as a tool for improving digital resilience: UNI/PdR 174:2025 – Fabio Guasconi (UNI Expert)

10:30 – 10:45 ACN’s basic security measures and their link to the National Framework for Cybersecurity and Data Protection – Davide Nardacci (ACN)

10:45 – 11:00 am Assisted migration by Framework 2.0 to 2.1 – Marco Angelini (Sapienza Università di Roma)

11:00 – 11:15 am Overview of the Reference Practice UNI 174 – Ermete Meda (CINI)

11:15 – 11:25 am Break

11:25 – 12:15 am Simulation of a use case applied to ACN Decision No. 164179 regarding baseline measurements for Critical Infrastructure Entities using the Serics PdR App – Giovanni Paolo Caruso (CNR) and Ermete Meda (CINI)

12:15 – 12:30 pm Conclusions and session – Riccardo Bianconi (Accredia)